Infosec In Brief So-hot-right-now AI assistant OpenClaw, which is very much not secure right now, has teamed up with security scanning service VirusTotal. The tie-up means “skills” in the ClawHub – custom plugins for the OpenClaw assistant – will be scanned by over 70 antivirus scanners and URL/domain blocklisting services. “OpenClaw skills are powerful. They extend what your AI agent can do—from controlling smart home devices to managing finances to automating workflows. But with that power comes risk,” the assistant’s developers wrote in a Saturday post that explains the decision to work with VirusTotal. The post points out that working with the scanning service won’t totally secure OpenClaw. “Let’s be clear: this is not a silver bullet,” the developers wrote. “VirusTotal scanning won’t catch everything. A skill that uses natural language to instruct an agent to do something malicious won’t trigger a virus signature. A carefully crafted prompt injection payload won’t show up in a threat database.” Fallout from the Salt Typhoon hack of leading American telcos continues, and one US Senator isn't convinced that victim companies are being honest. Senator Maria Cantwell (D-WA), the ranking member of the Senate Committee on Commerce, Science, and Transportation, last week sent a letter to her Republican counterpart demanding the CEOs of AT&T and Verizon appear before the group to explain why they keep withholding security assessments performed in the wake of 2024 revelations of w...
Russian cyberspies access target by compromising neighbors
The Register
·Brandon Vigliarolo
·Published Nov 25, 2024
·Updated
Affected Software
4 affected components
Apache Tika
Apache tika-core=3.2.2
Apache tika-parser-pdf-module
Apache tika-parsers
Frequently Asked Questions
1
What is the primary focus of the article?
The article discusses how Russian cyberspies gain access to their targets by compromising neighboring systems.
2
What security tools were released by Mandiant?
Mandiant released tools designed to crack credentials within 12 hours, aimed at phasing out an outdated Microsoft security protocol.
3
Which software products are highlighted as affected in the article?
The affected software products include Apache Tika, Apache tika-core version 3.2.2, and related parser modules.
4
What are the implications of the Russian cyberspy activity?
The implications include heightened security risks for organizations due to compromised neighboring networks.
5
How does Mandiant's tool contribute to security improvements?
Mandiant's tool aims to expedite the transition away from deprecated Microsoft security protocols by demonstrating their vulnerabilities.